Three ways to run Blueprintr

Use the shared service, have us run an instance for your organisation alone, or install it on your own servers. The product is the same in all three.

SaaS shared

Sign up and start today on the service we run for every customer.

  • We run, monitor and upgrade it, and new features reach you the day they ship.
  • Hosted in the EEA on shared infrastructure, with each organisation's content logically isolated.
  • Every plan, from Personal for free to Enterprise with SAML SSO, SCIM and Continuum Local.
  • Vellum desktop apps for Mac, Windows and Linux sign in to it.

For individuals and teams, and for organisations whose security review accepts a shared service.

SaaS dedicated

An instance for your organisation alone, run and upgraded by us.

  • Hosted in the EEA, with its own database, file storage and encryption keys. No other customer shares them.
  • Served from its own hostname, which can be on one of your domains.
  • Upgraded from stable releases, in a maintenance window agreed with you.
  • Sign-in through your identity provider over OIDC, or SAML with SCIM provisioning.

For organisations whose security review rules out shared infrastructure, and who would rather not run it themselves.

Self-hosted

Run Blueprintr on your own servers, in your data centre or cloud account.

  • Docker Compose on one Linux server, a Helm chart for Kubernetes, or an offline bundle for networks with no internet access.
  • Your PostgreSQL database, your mail server, and files on a local volume or any S3-compatible store.
  • A signed licence file the instance checks for itself, so it runs with no connection to Blueprintr.
  • You choose when to upgrade, from signed stable releases.

For regulated and air-gapped environments, and for organisations that keep their data on their own infrastructure.

How the three compare

Who operates each one, where it runs, and what that changes for sign-in, AI and Continuum.

SaaS sharedSaaS dedicatedSelf-hosted
Who runs itBlueprintrBlueprintrYour team
Where it runsOur hosting in the EEAOur hosting in the EEA, on infrastructure for you aloneYour data centre or cloud account
Database and filesShared, with each organisation logically isolatedDedicated to you, with their own encryption keysYour own, on your infrastructure
UpgradesContinuous, as features shipStable releases, in a window agreed with youStable releases, when you choose
Sign-inEmail and password with MFA and passkeys. SAML SSO and SCIM on EnterpriseYour identity provider over OIDC, or SAML with SCIMYour identity provider over OIDC, or SAML with SCIM
AIBlueprintr's AI, with an allowance set by your planBlueprintr's AI, or your own Claude providerOff, Blueprintr's AI, or your own Claude provider
Continuum cloud scansA read-only role you grant to BlueprintrA read-only role you grant to your instanceYour instance's own cloud identity
Continuum Local agentConnects out to BlueprintrConnects out to your instanceConnects to your instance, inside your network
Public blueprintsVisible to anyone on the internetVisible to everyone signed in, and anonymously if an admin allows itVisible to everyone signed in, and anonymously if an admin allows it
Internet accessRequiredRequiredNot required: the offline bundle installs and runs without it
ContractMonthly or annual, by card or invoiceAnnual, quoted for your organisationAnnual, per seat

Questions

Yes. Blueprints, Vellum, Strata, Folium, Atrium, Podium, Continuum and the AI features are built from the same code for all three. A dedicated or self-hosted instance serves everything from one hostname, so organisations on it do not get their own subdomains, and the Vellum desktop apps sign in to the shared service only.
Only for what you turn on. AI through Blueprintr sends those requests to our service, and a licence can include a usage report. The licence itself is a signed file the instance checks on its own, and a missed report never stops the instance. Releases come from our registry, or as an offline bundle you copy in.
An x86-64 Linux server with Docker Engine 24 or later and Compose v2, or a Kubernetes cluster with Helm. The Compose install includes PostgreSQL; on Kubernetes, bring PostgreSQL 15, 16 or 17. You also need an SMTP server, a TLS certificate, and either a local volume or an S3-compatible store for files.
Any OpenID Connect provider, such as Microsoft Entra ID, Okta, Ping or Keycloak, and SAML with SCIM provisioning. Local accounts with MFA and passkeys work too.
On SaaS shared and SaaS dedicated, in the EEA: the privacy policy sets out where your content and account data are stored and who else processes it. On a self-hosted instance, wherever you install it.
SaaS shared uses the plans on the pricing section, starting free. SaaS dedicated and self-hosted are annual contracts quoted for your organisation, and self-hosted is priced per seat. With self-hosted you also pay for the infrastructure you run it on.
Not sure which one fits?Tell us about your organisation and we will suggest one.
Talk to us